Логотип exploitDog
bind:CVE-2020-8289
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-8289

Количество 2

Количество 2

nvd логотип

CVE-2020-8289

около 5 лет назад

Backblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in `bztransmit` helper due to hardcoded whitelist of strings in URLs where validation is disabled leading to possible remote code execution via client update functionality.

CVSS3: 7.8
EPSS: Средний
github логотип

GHSA-7f55-fqw6-8jjp

больше 3 лет назад

Backblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in `bztransmit` helper due to hardcoded whitelist of strings in URLs where validation is disabled leading to possible remote code execution via client update functionality.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-8289

Backblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in `bztransmit` helper due to hardcoded whitelist of strings in URLs where validation is disabled leading to possible remote code execution via client update functionality.

CVSS3: 7.8
21%
Средний
около 5 лет назад
github логотип
GHSA-7f55-fqw6-8jjp

Backblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in `bztransmit` helper due to hardcoded whitelist of strings in URLs where validation is disabled leading to possible remote code execution via client update functionality.

21%
Средний
больше 3 лет назад

Уязвимостей на страницу